...

Text file src/github.com/sigstore/cosign/v2/.github/workflows/depsreview.yml

Documentation: github.com/sigstore/cosign/v2/.github/workflows

     1#
     2# Copyright 2022 The Sigstore Authors.
     3#
     4# Licensed under the Apache License, Version 2.0 (the "License");
     5# you may not use this file except in compliance with the License.
     6# You may obtain a copy of the License at
     7#
     8#     http://www.apache.org/licenses/LICENSE-2.0
     9#
    10# Unless required by applicable law or agreed to in writing, software
    11# distributed under the License is distributed on an "AS IS" BASIS,
    12# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
    13# See the License for the specific language governing permissions and
    14# limitations under the License.
    15name: 'Dependency Review'
    16on: [pull_request]
    17
    18permissions:
    19  contents: read
    20
    21jobs:
    22  dependency-review:
    23    name: License and Vulnerability Scan
    24    uses: sigstore/community/.github/workflows/reusable-dependency-review.yml@9b1b5aca605f92ec5b1bf3681b1e61b3dbc420cc

View as plain text